remote
Info Security Engineer II - CorVel Corporation
Security Engineer
Senior Info Security Engineer focused on protecting corporate digital assets through risk assessment, secure design, and governance across business units, leveraging advanced security practices and compliance frameworks.
About the role
Key Responsibilities
- Partner with business, system, and application teams to assess technical designs and recommend secure solutions.
- Conduct risk assessments, categorize systems, and select appropriate controls to mitigate threats.
- Develop and enforce information security policies, procedures, and governance frameworks.
- Lead threat modeling and vulnerability analysis to identify and remediate security gaps.
- Provide guidance on compliance requirements and support audit activities.
Requirements
- 3+ years of experience in information security engineering or related field.
- Strong knowledge of security frameworks (NIST, ISO 27001, CIS Controls) and compliance standards.
- Hands‑on experience with secure design, risk assessment, and threat modeling.
- Excellent communication skills to translate technical findings to non‑technical stakeholders.
- Relevant certifications (CISSP, CISM, or equivalent) preferred.
Skills
siemiampenetration testing